Oval Definition:oval:org.mitre.oval:def:22115
Revision Date:2014-02-24Version:35
Title:RHSA-2010:0126: kvm security and bug fix update (Important)
Description:The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not properly restrict writing of segment selectors to segment registers, which might allow guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CESA-2010:0126
CVE-2009-3722
CVE-2010-0419
RHSA-2010:0126-01
Platform(s):CentOS Linux 5
Red Hat Enterprise Linux 5
Product(s):kvm
Definition Synopsis
  • Redhat 5 or Centos 5 release
  • The operating system installed on the system is Red Hat Enterprise Linux 5
  • OR The operating system installed on the system is CentOS Linux 5.x
  • AND Packages section
  • kvm-qemu-img is earlier than 0:83-105.el5_4.27
  • OR kvm is earlier than 0:83-105.el5_4.27
  • OR kmod-kvm is earlier than 0:83-105.el5_4.27
  • OR kvm-tools is earlier than 0:83-105.el5_4.27
  • BACK